PNC Bank seems to be the latest target of the organized DDoS attacks agains major U.S. financial institutions such as JPMorgan Chase, Bank of America, Wells Fargo, Citigroup, U.S. Bancorp, New York Stock Exchange and others.

In the week, the banks' websites have been intermittently bombarded with a flood of requests that left their own customers unable to reach them and perform financial transactions via internet banking.

According to the statement posted online by the self-styled Izz ad-Din al-Qassam Cyber Fighters group, the attacks are a way of forcing the takedown of the controversial video that, according to the group, mocks the prophet Muhammad.

The hacktivists have also provided links to two sites that, when visited by volunteers, automatically use their computers to flood the aforementioned sites with requests.

But, according to some security researchers, that alone isn't enough to effectively execute these attacks - the financial institutions in question have DDoS services at their disposal that could easily make those efforts meaningless.

They believe that the hacktivists are taking advantage of existing botnets that are offered for rent on the Internet, and that behind all these efforts might be a nation-state - possibly Iran.

Other researchers - namely Dmitri Alperovich, cofounder and CTO of security company CrowdStrike - believes that the real reason behind the attacks is not the fact that the groups wants the video taken down, but that they want to prove to the world what they are capable of.

Given the (in the Middle East) ubiquitous view that the U.S. cares only about the money, targeting its biggest financial institutions could be an attempt to hit the country where it hurts the most.

Spotlight

(IN)SECURE Magazine is a free digital security publication discussing some of the hottest information security topics. Learn about personal data bankruptcy and the cost of privacy, security and compliance, delivering digital security to a mobile world, and much more.

As ISPs, hosting providers and online enterprises around the world continue suffering the effects of DDoS attacks, often the discussions that follow are, “What is the best way to defend our networks and our customers against an attack?”

The code redirects visitors to another URL where the Fiesta exploit kit is hosted, which then tries to detect and exploit several vulnerabilities in various software. If it succeeds, the visitors are saddled with a banking Trojan.

Looking for an Android-based tablet for your child but don't know which one to choose? If you are concerned about the device's protection against random hackers, Bluebox Security has just released a review of the nine most popular Android tablet models aimed specifically at children.